Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-37773— virtiofs: add filesystem context source name check

EPSS 0.07% · P20

Affected Version Matrix 18

VendorProductVersion RangeStatus
LinuxLinuxa62a8ef9d97da23762a588592c8b8eb50a8deb6a< b84f13fdad10a543e2e65bab7e81b3f0bceabd67affected
a62a8ef9d97da23762a588592c8b8eb50a8deb6a< 9d6dcf18a1b49990295ac8a05fd9bdfd27ccbf88affected
a62a8ef9d97da23762a588592c8b8eb50a8deb6a< 5ee09cdaf3414f6c92960714af46d3d90eede2f3affected
a62a8ef9d97da23762a588592c8b8eb50a8deb6a< 599d1e2a6aecc44acf22fe7ea6f5e84a7e526abeaffected
a62a8ef9d97da23762a588592c8b8eb50a8deb6a< f6ec52710dc5e156b774cbef5d0f5c99b1c53a80affected
a62a8ef9d97da23762a588592c8b8eb50a8deb6a< c3e31d613951c299487844c4d1686a933e8ee291affected
a62a8ef9d97da23762a588592c8b8eb50a8deb6a< a648d80f8d9b208beee03a2d9aa690cfacf1d41eaffected
a62a8ef9d97da23762a588592c8b8eb50a8deb6a< a94fd938df2b1628da66b498aa0eeb89593bc7a2affected
… +10 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-37773

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
virtiofs: add filesystem context source name check
Source: NVD (National Vulnerability Database)
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: virtiofs: add filesystem context source name check In certain scenarios, for example, during fuzz testing, the source name may be NULL, which could lead to a kernel panic. Therefore, an extra check for the source name should be added.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于virtiofs中文件系统上下文源名称检查不足。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux a62a8ef9d97da23762a588592c8b8eb50a8deb6a ~ b84f13fdad10a543e2e65bab7e81b3f0bceabd67 -
LinuxLinux 5.4 -

II. Public POCs for CVE-2025-37773

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-37773

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-05-01 · 245 CVEs total

CVE-2022-49854mctp: Fix an error handling path in mctp_init()
CVE-2022-49837bpf: Fix memory leaks in __check_func_call
CVE-2022-49838sctp: clear out_curr if all frag chunks of current msg are pruned
CVE-2022-49840bpf, test_run: Fix alignment problem in bpf_prog_test_run_skb()
CVE-2022-49839scsi: scsi_transport_sas: Fix error handling in sas_phy_add()
CVE-2022-49841serial: imx: Add missing .thaw_noirq hook
CVE-2022-49842ASoC: core: Fix use-after-free in snd_soc_exit()
CVE-2022-49844can: dev: fix skb drop check
CVE-2022-49845can: j1939: j1939_send_one(): fix missing CAN header initialization
CVE-2022-49846udf: Fix a slab-out-of-bounds write bug in udf_find_entry()
CVE-2022-49847net: ethernet: ti: am65-cpsw: Fix segmentation fault at module unload
CVE-2022-49849btrfs: fix match incorrectly in dev_args_match_device
CVE-2022-49848phy: qcom-qmp-combo: fix NULL-deref on runtime resume
CVE-2022-49850nilfs2: fix deadlock in nilfs_count_free_blocks()
CVE-2022-49851riscv: fix reserved memory setup
CVE-2022-49852riscv: process: fix kernel info leakage
CVE-2022-49862tipc: fix the msg->req tlv len check in tipc_nl_compat_name_table_dump_header
CVE-2022-49864drm/amdkfd: Fix NULL pointer dereference in svm_migrate_to_ram()
CVE-2022-49865ipv6: addrlabel: fix infoleak when sending struct ifaddrlblmsg to network
CVE-2022-49863can: af_can: fix NULL pointer dereference in can_rx_register()

Showing top 20 of 245 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2025-37773

No comments yet


Leave a comment